advanced-security / gh-sbom

Generate SBOMs with gh CLI
MIT License
161 stars 13 forks source link

Invalid PURL value #17

Open surendrapathak opened 1 year ago

surendrapathak commented 1 year ago

Value : pkg:githubactions/huggingface/doc-builder/.github/workflows/delete_doc_comment.yml@use_hf_hub

Expected: PURL spec: scheme:type/namespace/name@version?qualifiers#subpath

Reference: https://github.com/package-url/purl-spec#purl

SBOM URL: | https://sbomlc.s3.amazonaws.com/gh-sbom-v0.0.9_accelerate-0.18.0.spdx.json?AWSAccessKeyId=AKIA2ZBFUJ4NNQGYD5OF&Signature=OwGArrr6ZDlkpgUCzBaKEpDa%2Fl8%3D&Expires=1713580541 QS URL: | https://sbombenchmark.dev/score/gh-sbom-v0.0.9_huggingface-hub-0.13.4.spdx.json